"
data-check-event-based-preview=""
data-is-vertical-video-embed="false"
data-network-id=""
data-publish-date="2020-12-16T14:34:02Z"
data-video-section="business"
data-canonical-url="https://www.cnn.com/videos/business/2020/12/16/us-government-hack-solarwinds.cnnbusiness"
data-branding-key=""
data-video-slug="us government hack solarwinds"
data-first-publish-slug="us government hack solarwinds"
data-video-tags="continents and regions,crime, law enforcement and corrections,criminal offenses,digital crime,digital security,eastern europe,europe,government and public administration,government bodies and offices,government organizations - us,politics,russia,technology,us federal departments and agencies,us federal government"
data-details="">
Video Ad Feedback
US government agencies breached by Russian-linked hackers
"
data-check-event-based-preview=""
data-is-vertical-video-embed="false"
data-network-id=""
data-publish-date="2020-12-16T14:34:02Z"
data-video-section="business"
data-canonical-url="https://www.cnn.com/videos/business/2020/12/16/us-government-hack-solarwinds.cnnbusiness"
data-branding-key=""
data-video-slug="us government hack solarwinds"
data-first-publish-slug="us government hack solarwinds"
data-video-tags="continents and regions,crime, law enforcement and corrections,criminal offenses,digital crime,digital security,eastern europe,europe,government and public administration,government bodies and offices,government organizations - us,politics,russia,technology,us federal departments and agencies,us federal government"
data-details="">
Video Ad Feedback
US government agencies breached by Russian-linked hackers
"
data-check-event-based-preview=""
data-is-vertical-video-embed="false"
data-network-id=""
data-publish-date="2024-06-13T16:27:27Z"
data-video-section="politics"
data-canonical-url="https://www.cnn.com/videos/politics/2024/06/13/marjorie-taylor-greene-donald-trump-capitol-visit-speaker-johnson-digvid.cnn"
data-branding-key=""
data-video-slug="marjorie taylor greene donald trump capitol visit speaker johnson digvid"
data-first-publish-slug="marjorie taylor greene donald trump capitol visit speaker johnson digvid"
data-video-tags=""
data-details="">
Video Ad Feedback
MTG says Trump told her to 'be nice' to Speaker Johnson
"
data-check-event-based-preview=""
data-is-vertical-video-embed="false"
data-network-id=""
data-publish-date="2024-06-03T18:00:41Z"
data-video-section="politics"
data-canonical-url="https://www.cnn.com/videos/politics/2024/06/03/fauci-death-threats-covid-origins-hearing-sot-dle-digvid.cnn"
data-branding-key=""
data-video-slug="fauci death threats covid origins hearing sot dle digvid"
data-first-publish-slug="fauci death threats covid origins hearing sot dle digvid"
data-video-tags=""
data-details="">
Video Ad Feedback
Fauci gets emotional discussing threats made against his family
"
data-check-event-based-preview=""
data-is-vertical-video-embed="false"
data-network-id=""
data-publish-date="2024-06-01T16:40:38Z"
data-video-section="politics"
data-canonical-url="https://www.cnn.com/videos/politics/2024/06/01/smr-charlamagne-tha-god-on-black-voters-digvid.cnn"
data-branding-key=""
data-video-slug="SMR Charlamagne tha God on black voters digvid"
data-first-publish-slug="SMR Charlamagne tha God on black voters digvid"
data-video-tags=""
data-details="">
Video Ad Feedback
Charlamagne tha God: America has zero protection from people like Donald Trump
The tech company said that 80% of those victims are in the US while the rest are in seven other countries: Canada, Mexico, Belgium, Spain, the United Kingdom, Israel and the United Arab Emirates.
“It’s a certainty that the number and location of victims will keep growing,” said Microsoft President Brad Smith, who added that the company has worked to notify the affected organizations.
Microsoft’s analysis represents the clearest and most specific assessment yet of the scope of the damage caused by the hacking campaign, which was secretly conducted through a third-party software program sold by SolarWinds, an IT management firm.
The software that the suspected Russian malware was delivered with, SolarWinds Orion, has as many as 18,000 global customers, including government agencies, private companies and other organizations. Microsoft said Thursday that the attack “reached many major national capitals outside Russia.”
“The attack unfortunately represents a broad and successful espionage-based assault on both the confidential information of the U.S. Government and the tech tools used by firms to protect them,” Smith wrote. “The attack is ongoing and is being actively investigated and addressed by cybersecurity teams in the public and private sectors, including Microsoft.”
Microsoft has been working as an investigative partner to cybersecurity firm FireEye, which is also a victim and issued the first warning about the supply chain attack.
Previously, FireEye also identified victims across several sectors and countries, including government, consulting, technology, telecom and extractive entities in North America, Europe, Asia and the Middle East.
Earlier Thursday, Reuters reported that Microsoft had been compromised as well. Microsoft said it has “isolated and removed” a vulnerability in its systems tied to third-party software that had facilitated a suspected Russian hacking campaign.
Updates to the software sold by SolarWinds were used as a carrier for malicious code that US officials believe may be linked to Russia. That software was found in Microsoft’s network, the company said in a statement Thursday evening.
The statement marks Microsoft’s first public acknowledgment that in addition to investigating the malware, it was also a victim of it.
“Like other SolarWinds customers, we have been actively looking for indicators of this actor and can confirm that we detected malicious Solar Winds binaries in our environment, which we isolated and removed,” the statement said.
Microsoft has not found evidence that an actual data breach occurred or that the attackers exploited their access, the company added. The company pushed back on a Reuters report that suggested Microsoft’s products had been used to compromise other victims.
“Our investigations, which are ongoing, have found absolutely no indications that our systems were used to attack others,” Microsoft said.
This story has been updated with acknowledgment from Microsoft that it was compromised.